Secure Connection Failed to jenkins-ci.org

101 views
Skip to first unread message

Per Arnold Blaasmo

unread,
Oct 27, 2015, 10:15:02 AM10/27/15
to jenkin...@googlegroups.com
Trying to access bugtracker for jenksin gets me security breach:

>Secure Connection Failed
>
>An error occurred during a connection to wiki.jenkins-ci.org. Peer's
Certificate has been revoked. (Error code: sec_error_revoked_certificate)
>
> The page you are trying to view cannot be shown because the
authenticity of the received data could not be verified.
> Please contact the website owners to inform them of this problem.

Also accessing other https pages on jenkins-ci.org seems to fail.
I have tried both from Firefox and from IE10.

Since I cannot report this bug in the bugtracker, I write to this e-mail
list.

Is this error real, or is it something in my network?

Regards
Per A.

--
Per Arnold Blåsmo
Senior Software Craftsman, Atmel Norway
Tel: (+47) 72897-651 / Mobile: (+47) 901-63-657 / Fax: (+47) 72-88-43-99
e-mail: Per-Arnol...@atmel.com / g-talk: pabl...@gmail.com / www.atmel.com

The information contained in this email message may be privileged, confidential and/or protected from unauthorized disclosure. If you are not the intended recipient, any dissemination, distribution or copying is strictly prohibited. Please immediately notify the sender by reply if you received this email in error. Thank you for your cooperation.

Daniel Beck

unread,
Oct 27, 2015, 10:28:15 AM10/27/15
to jenkin...@googlegroups.com

On 27.10.2015, at 15:15, Per Arnold Blaasmo <per-arnol...@atmel.com> wrote:

> Is this error real, or is it something in my network?

Known issue. As a workaround, disable OCSP checks in your browser.

Per Arnold Blaasmo

unread,
Oct 27, 2015, 10:46:20 AM10/27/15
to jenkin...@googlegroups.com
OK, Thanks.
That worked, but do I really want to do that?
It never was a problem before, why now?
Shouldn't jenkins-ci.org fix it's certificate?

Regards
Per A.

Daniel Beck

unread,
Oct 27, 2015, 10:56:48 AM10/27/15
to jenkin...@googlegroups.com

On 27.10.2015, at 15:46, Per Arnold Blaasmo <per-arnol...@atmel.com> wrote:

> That worked, but do I really want to do that?

As a temporary workaround, possibly. Alternatively you could just wait until it's fixed.

> It never was a problem before, why now?

Apparently the fix for JENKINS-31089 resulted in the old cert being automatically revoked.

> Shouldn't jenkins-ci.org fix it's certificate?

Nope, we're perfectly happy with this solution as is.

Seriously though, that's why I'm calling this a 'known issue', and disabling OCSP a workaround, and not a solution. The timing with JavaOne right now[1] just isn't great for getting this fixed really quickly.

1: https://www.oracle.com/javaone/index.html

Reply all
Reply to author
Forward
0 new messages